Lucene search

K
osvGoogleOSV:CVE-2021-29465
HistoryApr 22, 2021 - 1:15 a.m.

CVE-2021-29465

2021-04-2201:15:07
Google
osv.dev
7
discord-recon
rce
vulnerability
remote code execution
patch

AI Score

7.8

Confidence

High

EPSS

0.005

Percentile

76.3%

Discord-Recon is a bot for the Discord chat service. Versions of Discord-Recon 0.0.3 and prior contain a vulnerability in which a remote attacker is able to overwrite any file on the system with the command results. This can result in remote code execution when the user overwrite important files on the system. As a workaround, bot maintainers can edit their setting.py file then add < and > into the RCE variable inside of it to fix the issue without an update. The vulnerability is patched in version 0.0.4.

AI Score

7.8

Confidence

High

EPSS

0.005

Percentile

76.3%

Related for OSV:CVE-2021-29465